§ Privacy
Privacy Policy
Last updated · 5 September 2026
Unbinder (“we”, “us”) is an independent mobile application for cataloguing Pokémon trading cards. We collect the minimum amount of information needed to operate the service.
What we collect
- Account and profile data. Your email address, Unbinder user ID and, when you add them, your name, username, avatar, bio, country and city. We use these to sign you in, connect your collection to your account and support collector profiles and trading.
- Collection cost and valuation data. The cards, sealed products, binders, wishlists, notes, optional purchase costs, estimated collection values, value changes and other collection details you save. This is used only to provide collection-management features. Because estimated collection values describe assets, we conservatively declare them as other financial information in Apple’s App Privacy label. Google Play classifies subscription and acquisition transactions as purchase history; Unbinder is not a financial-services app. Unbinder does not receive or store your bank-account details, payment-card details, credit information, income or debts. Private collection records are only available to your account unless you choose to share something.
- Scans. The scanner is intended only for trading-card photos; do not include people, identity documents or other personal material. A photo taken by the scanner is sent to our identification service. The image is not stored in Unbinder’s database or storage. Our processor may retain API inputs and outputs for up to 30 days under its standard commercial retention policy, with limited longer retention for usage-policy enforcement or legal obligations. We do retain outcome metadata linked to your account, such as the suggested card, confidence, candidate list and the card you select or reject, so we can measure and improve identification accuracy.
- Photos you choose to save. Profile images and photos you attach to cards or sealed products are stored separately from scanner images so the app can show them back to you. You can remove attached photos in the app; all are deleted when you delete your account.
- Messages and other content. Trade offers, chat messages, reports and other content you submit are stored so the relevant feature works and, where applicable, so we can handle safety reports.
- Purchases, subscriptions and Apple Ads attribution. If you buy Unbinder Pro, we receive product, transaction, subscription status, renewal and storefront information from Apple or Google Play through RevenueCat. On iOS, Apple may also provide RevenueCat with a standard attribution token and campaign, ad-group and keyword metadata so we can measure campaign and subscription effectiveness. This does not use IDFA and does not require App Tracking Transparency permission. We do not receive or store your payment-card details.
- Product analytics and searches. PostHog receives events such as page or screen views, searches, feature interactions, scan outcomes and timing information. Before sign-in these use an anonymous device or browser ID; after sign-in they are linked to your Unbinder user ID. Events can include platform, screen, search terms and relevant card, binder or content IDs. PostHog may derive a coarse region from the network request. We do not send it your name, email, collection records, messages or photos.
- Diagnostics. PostHog receives app crashes, JavaScript errors, stack information and limited performance measurements so we can find and fix faults. Sentry (EU) receives native crash reports from the mobile app with device, OS and build context; it does not receive your searches or the addresses of the requests the app makes. After sign-in, this diagnostic data can be linked to your Unbinder user ID. It does not include scanner images or photos you attach.
- Notifications. If you allow push notifications, we store an Expo push token linked to your account, along with your notification preferences, so we can deliver alerts you asked for.
Where your data lives
Unbinder uses a small set of carefully chosen processors, all based in the EU where possible:
- Supabase (EU). Stores your account (email, user ID), your collection data (binders, boxes, cards, slots) and the card photos you attach. Supabase is our database, authentication and storage provider.
- Resend (EU, Ireland). Sends you transactional emails such as magic-link sign-in links. Resend never receives your collection data.
- OpenAI API and Anthropic Claude API (United States). OpenAI receives the photo you take with the in-app scanner for the primary card-identification attempt. Anthropic receives it only as a fallback if that OpenAI request fails. The image is not stored by Unbinder, and commercial API inputs are not used to train either provider’s models by default. Unbinder disables OpenAI response storage. Both providers may still retain API content for up to 30 days for safety and usage-policy enforcement, with limited legal or agreed exceptions. Their commercial data-processing terms include safeguards for international transfers.
- PostHog (EU, Frankfurt). Receives the product analytics, search, device, coarse-region, crash and diagnostic data described above.
- Sentry (EU, Frankfurt). Receives native crash reports from the mobile app with device, OS and build context so we can fix crashes that happen outside the app’s JavaScript code.
- RevenueCat, Apple and Google. Process in-app purchases and subscription status. RevenueCat uses your Unbinder user ID to connect an entitlement to your account; Apple or Google handles the store payment. Apple and RevenueCat also process standard Apple Ads attribution for campaign measurement.
- Expo Push Service, Apple Push Notification service and Firebase Cloud Messaging. Receive your push token and notification payload when we send a notification you enabled.
- Fly.io (Amsterdam), Vercel (EU) and GitHub (United States). Fly.io runs the Unbinder API and the scheduled jobs that touch your data (price alerts, trade notifications, the weekly digest) in Amsterdam. Vercel serves this website from its Frankfurt region. GitHub-hosted servers in the United States run only a daily scanner-health check that reads aggregate scan statistics, never your collection, wishlist or contacts.
These providers process data to deliver Unbinder on our behalf. We do not sell personal data or share it for third-party advertising.
What we never do
- Sell, rent or share your collection with third parties.
- Use your data for advertising profiling.
- Collect precise location, contacts, health data, microphone recordings or payment-card details.
- Keep scanner photos in Unbinder’s own database or storage.
Affiliate partnerships
When you follow a marketplace link from a card or sealed product, Unbinder may receive a small commission if you buy, at no extra cost to you. Qualifying eBay and TCGplayer links may earn commission; Cardmarket is used for price comparison. On this website, pages that contain commission-earning links say so. Unbinder is not affiliated with Amazon.
- eBay Partner Network (EPN) — active affiliate program for eBay listings.
- Cardmarket — links for comparing European card prices and offers. On this website, pages that contain commission-earning links say so.
- TCGplayer — active affiliate program for card and sealed-product listings.
Once you leave Unbinder, the merchant’s own privacy policy applies and they may set cookies on their domain. We do not see what you buy or how much you spend. See our affiliate disclosure for details.
Your rights (GDPR)
Unbinder is operated from the Netherlands. EU users have the right to access the data we hold about them, to correct it, to export it in a portable, machine-readable format (right to data portability), to delete it, to restrict or object to our processing of it, and to lodge a complaint with their national data protection authority. Email support@unbinder.app and we’ll action the request within 30 days.
Deleting your account
You can permanently delete your Unbinder account from inside the app: go to Settings → Account → Delete account. Deletion removes your authentication record and user data, queues deletion of your account-linked PostHog events, and deletes your RevenueCat customer record. It does not cancel an active App Store or Google Play subscription; manage that separately in your Apple Account or Google Play settings. If you used Sign in with Apple, you can also remove Unbinder from those Apple Account settings after deletion. There is no recovery window. If you cannot use the in-app flow, email support@unbinder.app and we’ll action the request within 30 days.
How long we keep your data
- Account, profile, entitlement and push-token data: kept until you delete your account, remove the data, or the token becomes invalid, subject to any legal record-keeping requirement.
- Collection, trade and message data: kept until you delete it where the app allows, or until you delete your account.
- Scan photos: not stored by Unbinder. OpenAI, or Anthropic when the fallback is used, may retain API content for up to 30 days for safety and usage-policy enforcement, with the limited exceptions described above. Scan outcome metadata is kept until you delete your account.
- Saved profile, card and sealed-product photos: kept until you remove them where the app allows, or until you delete your account.
- Analytics, diagnostics and campaign attribution: PostHog events are kept for up to 12 months, then aged out; Apple Ads attribution is kept by RevenueCat under its retention terms until the customer record is deleted. Account deletion requests earlier deletion of account-linked PostHog events and deletes the RevenueCat customer record.
- Email logs (sign-in links sent via Resend): kept for up to 30 days for delivery troubleshooting, then deleted.
- Backups: encrypted database backups are retained for 30 days, after which deleted accounts are unrecoverable even from backup.
Minimum age
Unbinder’s scanner and private collection features are intended for users aged 13 and over. Before the first AI-assisted scan, we ask you to confirm that you are 18 or older or, if you are 13–17, that you have parent or guardian permission; the app stores that consent decision on your device and every scan request carries the confirmation, not your date of birth. Community features that put users in contact with one another — including a public collector username, trading and messaging — are available only to users aged 16 and over. When you claim a username, we ask you to confirm that age band and accept the current community terms. We store the community confirmation time and terms version, not your date of birth. Unbinder is not directed at children under 13 and we do not knowingly collect their personal data. If you believe a child under 13 has created an account, email support@unbinder.app and we will delete the account and associated data without delay.
Cookies and local storage
This website sets no tracking cookies and shows no cookie banner because none is needed. It uses two functional cookies only: one that keeps you signed in on product pages, and one that remembers your language choice. On signed-in product pages, your browser’s local storage also keeps an anonymous analytics identifier for PostHog; public pages such as the blog and shared binders keep nothing beyond the page view itself. Merchants may set cookies on their own domain once you follow a marketplace link (see Affiliate partnerships).
Contact
Questions? Reach the human behind Unbinder at support@unbinder.app.